CVE-2022-22484 Information
Jun 07, 2022
cve
Description
IBM Spectrum Protect Operations Center 8.1.12 and 8.1.13 could allow a local attacker to obtain sensitive information caused by plain text user account passwords potentially being stored in the browser’s application command history. By accessing browser history an attacker could exploit this vulnerability to obtain other user accounts’ passwords. IBM X-Force ID: 226322.
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Reference
https://exchange.xforce.ibmcloud.com/vulnerabilities/226322 https://www.ibm.com/support/pages/node/6586314
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
NONE
Base Score
NONE
Base Severity
5.5
Share on: